Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 12-17-2004, 10:01 AM   #1
SteveLightspeed
Confirmed User
 
SteveLightspeed's Avatar
 
Join Date: Jul 2001
Location: Lightspeedworld
Posts: 7,940
IMPORTANT: Security issue about PHPBB

If anyone is running the Phpbb message board system on their sites, check this out

http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=244451

We just found out about this, unfortunately we learned the hard way after hackers used this exploit to seriously fuck us.

This exploit is well known by hackers, and porn sites ARE BEING TARGETED!


Steve Lightspeed
__________________
Abra-cadabra!
SteveLightspeed is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:03 AM   #2
KRL
Entrepreneur
 
Join Date: Oct 2002
Location: USA
Posts: 31,429
I think that alert was posted Steve about 2 weeks ago. Or is this a new one??
__________________
If you would like to develop your domains, you can lease inexpensive foreign labor
from the leaders in the field at iWebmasters.com TO LOWER YOUR COSTS AND INCREASE YOUR PRODUCTION!

*** *** *** *** *** *** *** *** *** *** *** ***
Domains Adult News KRL's Newsletter Biz Tips Just Listed Domains
KRL is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:04 AM   #3
bllott
Confirmed User
 
Join Date: Mar 2004
Location: Everywhere
Posts: 2,368
Quote:
Originally posted by Lightspeed
If anyone is running the Phpbb message board system on their sites, check this out

http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=244451

We just found out about this, unfortunately we learned the hard way after hackers used this exploit to seriously fuck us.

This exploit is well known by hackers, and porn sites ARE BEING TARGETED!


Steve Lightspeed
thanks man!
bllott is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:06 AM   #4
SteveLightspeed
Confirmed User
 
SteveLightspeed's Avatar
 
Join Date: Jul 2001
Location: Lightspeedworld
Posts: 7,940
Quote:
Originally posted by KRL
I think that alert was posted Steve about 2 weeks ago. Or is this a new one??
Well, if it was, my whole staff missed it, and we read GFY every day.

Couldn't hurt to mention it again, right? I wish someone would have reposted it for us to find out about this before this week.

Steve Lightspeed
__________________
Abra-cadabra!
SteveLightspeed is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:11 AM   #5
Johny Traffic
Confirmed User
 
Join Date: Apr 2003
Posts: 5,461
Quote:
Well, if it was, my whole staff missed it, and we read GFY every day.
Get them to start reading it with there eyes open

Its been posted many many times http://www.gofuckyourself.com/showth...hreadid=400875

But worth bringing up again Its a real fucker
__________________


hosted flv's, hosted galleries, morphing rss feeds, free content, free sites, hosted blog
Johny Traffic is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:15 AM   #6
Cory W
Deeply shallow
 
Cory W's Avatar
 
Join Date: Jan 2004
Location: Hollywood, Ca.
Posts: 9,133
We replaced that code asap. Our board is not connected to our Weg servers, but my concern was the user/pass information in the phpbb sql database.

Out of curiousity Steve, what did they attempt to do?

On a side note, I would import all of that information into V-Bulletin. I have been saying this for the past year. It takes about 2 hours for a good programmer to use the innate import script. It is just safer.
__________________
ICQ: 292310358
Offering writing and content services (mainstream).
Marketing for L3 Payments
Cory W is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:16 AM   #7
SteveLightspeed
Confirmed User
 
SteveLightspeed's Avatar
 
Join Date: Jul 2001
Location: Lightspeedworld
Posts: 7,940
Thanks Johnny Traffic,

It may just be that this board moves too fast sometimes, or we got distracted with something else.

Wish I would have seen your warning myself.


Steve Lightspeed
__________________
Abra-cadabra!
SteveLightspeed is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:18 AM   #8
Cory W
Deeply shallow
 
Cory W's Avatar
 
Join Date: Jan 2004
Location: Hollywood, Ca.
Posts: 9,133
Quote:
Originally posted by Johny Traffic
Get them to start reading it with there eyes open

Its been posted many many times http://www.gofuckyourself.com/showth...hreadid=400875

But worth bringing up again Its a real fucker
Yep, thanks for your post.
__________________
ICQ: 292310358
Offering writing and content services (mainstream).
Marketing for L3 Payments
Cory W is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:19 AM   #9
SteveLightspeed
Confirmed User
 
SteveLightspeed's Avatar
 
Join Date: Jul 2001
Location: Lightspeedworld
Posts: 7,940
Quote:
Originally posted by WEG Cory
Out of curiousity Steve, what did they attempt to do?
They deleted our entire Lightspeed4 database. We are still working with Natnet to recover everything. Thank God for Natnet, or we would be in serious deep shit.

Steve Lightspeed
__________________
Abra-cadabra!
SteveLightspeed is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 10:21 AM   #10
Fake Nick
So Fucking Banned
 
Join Date: Jul 2004
Location: go troll goo!
Posts: 7,708
hahahaha how could you have missed the thread about Saudi Arabia NOT being in ASIA ? ? ?

that thread was started about a board being hacked by some Saudi dudes who used this exploit


someone called them asian hackers but the oracle porn dissagreed and try to convince the world (read gfy) that Saudi Arabia is NOT in asia


how could all of your employees have missed a 5 page thread that went on for couple of days !! !


they are taking advantage of you Steve ! someone should get fired over this
Fake Nick is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-17-2004, 11:18 AM   #11
dirtysouth
Confirmed User
 
Join Date: Jul 2003
Location: Mobtown
Posts: 2,613
Quote:
Originally posted by Fake Nick
hahahaha how could you have missed the thread about Saudi Arabia NOT being in ASIA ? ? ?

that thread was started about a board being hacked by some Saudi dudes who used this exploit


someone called them asian hackers but the oracle porn dissagreed and try to convince the world (read gfy) that Saudi Arabia is NOT in asia


how could all of your employees have missed a 5 page thread that went on for couple of days !! !


they are taking advantage of you Steve ! someone should get fired over this
One of the funniest threads of the year for sure!
dirtysouth is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.